TwinCAT 'TCATSysSrv.exe' Network Packet Denial of Service Vulnerability
BID:49599
Info
TwinCAT 'TCATSysSrv.exe' Network Packet Denial of Service Vulnerability
| Bugtraq ID: | 49599 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2011-3486 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 13 2011 12:00AM |
| Updated: | Oct 11 2011 05:00PM |
| Credit: | Luigi Auriemma |
| Vulnerable: |
Beckhoff Automation TwinCAT 2.11 R2 Build 2032 |
| Not Vulnerable: | |
Discussion
TwinCAT 'TCATSysSrv.exe' Network Packet Denial of Service Vulnerability
TwinCAT is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to crash the application, denying service to legitimate users.
TwinCAT 2.11 R2 Build 2032 is vulnerable. Other versions may also be affected.
TwinCAT is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to crash the application, denying service to legitimate users.
TwinCAT 2.11 R2 Build 2032 is vulnerable. Other versions may also be affected.
Exploit / POC
TwinCAT 'TCATSysSrv.exe' Network Packet Denial of Service Vulnerability
Exploit code is available. Please see the references for information.
Exploit code is available. Please see the references for information.
Solution / Fix
TwinCAT 'TCATSysSrv.exe' Network Packet Denial of Service Vulnerability
Solution:
The vendor released an update. Please contact the vendor for more information on how to obtain and apply this update.
Solution:
The vendor released an update. Please contact the vendor for more information on how to obtain and apply this update.
References
TwinCAT 'TCATSysSrv.exe' Network Packet Denial of Service Vulnerability
References:
References:
- Beckhoff TwinCAT Denial of Service (Luigi Auriemma)
- ICSA-11-279-04�?? BECKHOFF TWINCAT DENIAL-OF-SERVICE VULNERABILITY (US-CERT)
- TwinCAT Software (Beckhoff Automation)